Improve the method and the equipment thereof of intelligent key equipment easy applied performance
Technical field
The present invention relates to information security field, particularly a kind of method and equipment thereof that improves intelligent key equipment easy applied performance.
Background technology
Intelligent cipher key equipment is a kind of USB interface equipment, and it adopts the double factor authentication pattern, and use is simple, cost is lower.Its built-in single-chip microcomputer or intelligent card chip can be stored user's key or digital certificate, utilizes the authentication of the built-in cryptographic algorithm realization of intelligent cipher key equipment to user identity.That intelligent cipher key equipment has is E-mail enciphered, digital signature, safety certificate, secure network login and visit SSL (Security Socket Layer, the secure socket layer protocol layer) function such as secure network, and has the feature that the private key that guarantees the user leaves hardware never, also have the characteristic of attack protection physically, security is high.
The communication of existing intelligent cipher key equipment can be passed through SCSI (Small Computer System Interface, small computer system interface) Ming Ling mode realizes, SCSI is a kind of interface standard that computing machine connects external equipment, and the faster data transmission rate can be provided.SCSI is for making things convenient for the developer to use to have reserved explosion command, and for finishing the SCSI communication of intelligent cipher key equipment, the developer is designed to the order of intelligent cipher key equipment with the SCSI explosion command, to finish the function of intelligent cipher key equipment.
Getting the order of LUN (Logic Unit Number is meant logic unit numbers) value is one of order of USB batch storage protocol, and its effect is to notify main process equipment that several logical blocks are arranged, and informs that promptly main frame has several equipment; In the SCSI bag LUN territory is arranged, corresponding with the LUN value in the USB batch storage protocol.TargetId also is a territory in the SCSI bag, and the label of its value representative equipment shows that promptly which equipment order follow relevant.When equipment was equipment complex, each equipment may have different labels, and by this label, which equipment the decision order mails to when carrying out communication between system and the equipment, informs by which equipment when equipment returns execution result to main frame and returns.Flag equally also is a territory in the SCSI bag, its value is used for representing the sign of SCSI bag, Flag one has 32 positions of 4 bytes, and wherein some is the position that the standard scsi command is not used, and specific SCSI bag identifies specific scsi command with these positions of not using.
AutoRun (AutoPlay function) brings a lot of facilities to the user, and AutoRun makes the operation that CD, hard disk and mass memory unit are carried out become easier.When the CD that has the AutoRun file or mass memory unit were connected on the computing machine, AutoRun can load the file (as GIF, JPEG, html file, pdf document, or the file that sets up on their own etc.) of appointment.It can eliminate when how user thinking is gone to browse or moved product the trouble that can run into.For example AutoRun can install certain software automatically, the developer can preset the installation procedure of software on CD, hard disk and mass memory unit, when inserting CD or operation hard disk and mass memory unit, system can move the installation procedure that AutoRun installs above-mentioned software automatically, installation can be that software is installed in the computer system---write registration table and installation directory etc., or the installation procedure of above-mentioned software is exactly software itself, copies the installation procedure of software to just realized software under the respective directories installation.
Along with the widespread use of intelligent cipher key equipment, the user also improves constantly its performance demands, and the ease for use that improves intelligent cipher key equipment is to improve a kind of main mode of its performance.The software that needs when existing intelligent cipher key equipment moves needs to provide in addition, for example adopt the mode of CD granting or network download, the user obtains also need installing behind the software, and loaded down with trivial details like this operation brings very big trouble to the user, has increased the operation easier of intelligent cipher key equipment.
Summary of the invention
In order to solve the existing not high problem of intelligent key equipment easy applied performance, the invention provides a kind of method that improves intelligent key equipment easy applied performance, specifically may further comprise the steps:
Steps A: the installation procedure and the AutoRun file that in the memory block of intelligent cipher key equipment, preset the required software of the described intelligent cipher key equipment of operation;
Step B: described intelligent cipher key equipment is connected to main frame, and described intelligent cipher key equipment reports that to described main frame its classification is CDROM;
Step C: move described AutoRun file, the described installation procedure of described AutoRun file appointment judges whether described software has been installed on the described main frame, if do not install, described software is installed on described main frame then;
Step D: described intelligent cipher key equipment carries out communication by scsi command and main frame.
Move the required software of described intelligent cipher key equipment and comprise in required driver, middleware, service and the plug-in unit of the described intelligent cipher key equipment of operation one or more.
The installation procedure and the described AutoRun file that move the required software of described intelligent cipher key equipment all are stored in the memory block that the storer of described intelligent cipher key equipment is divided out.
The AutoRun file does not produce the interface among the described step C, by the mode of background monitoring described software is installed.
Scsi command among the described step D comprises the specific scsi command or the scsi command of expansion.
Described specific scsi command is the SCSI bag that comprises special territory or position.
Described special territory comprises TargetId or LUN.
Described special position comprises the special position among TargetId, LUN or the Flag.
The present invention also provides a kind of intelligent cipher key equipment, and described intelligent cipher key equipment comprises:
Communication interface module is used to make described intelligent cipher key equipment and main frame to carry out communication;
Memory module is used for moving in the memory block of described intelligent cipher key equipment stored the installation procedure and the AutoRun file of the required software of described intelligent cipher key equipment;
Enumerate initialization module, be used for described intelligent cipher key equipment receive that described main frame sends enumerate order the time, report that to described main frame the classification of described intelligent cipher key equipment is CDROM;
The AutoRun module is used for the described AutoRun file of operation on described main frame, and judges by the described installation procedure of described AutoRun file appointment whether described software has been installed on the described main frame, if do not install, described software is installed on described main frame then;
Scsi command is resolved and execution module, is used for resolving and carry out described scsi command after described intelligent cipher key equipment receives the scsi command that described main frame sends.
The scsi command that described scsi command is resolved and execution module is resolved and carried out comprises the specific scsi command or the scsi command of expansion.
Beneficial effect of the present invention mainly shows:
Utilize AutoRun to finish the automatic installation of the required software of intelligent cipher key equipment, remove the user from and obtain the also trouble of install software, easy and simple to handle, be user-friendly to, realized that really the developer designs the purpose of the intelligent cipher key equipment of " foolproof ".
Description of drawings
Fig. 1 is the method embodiment process flow diagram that the present invention improves intelligent key equipment easy applied performance;
Fig. 2 is the example structure figure of intelligent cipher key equipment of the present invention.
Embodiment
The invention will be further described below in conjunction with the drawings and specific embodiments, but not as a limitation of the invention.
Installation procedure and AutoRun file that the present invention will move the required software of intelligent cipher key equipment are preset in the memory block of intelligent cipher key equipment, and this memory block is to divide a memory block of coming out from the storer of intelligent cipher key equipment; When intelligent cipher key equipment is connected to computing machine, by the required software of the automatic installation and operation intelligent cipher key equipment of AutoRun file.
Referring to Fig. 1, the invention provides a kind of method that improves intelligent key equipment easy applied performance, specifically may further comprise the steps:
Step 101: intelligent cipher key equipment is connected to main frame;
Step 102: main frame sends USB to intelligent cipher key equipment and enumerates order, to obtain the characteristic parameter of intelligent cipher key equipment;
Step 103: intelligent cipher key equipment receive main frame enumerate order after, report that to main frame it belongs to high-capacity storage;
Step 104: after main frame is received the report of intelligent cipher key equipment, send the order of obtaining the LUN value to intelligent cipher key equipment;
Step 105: after intelligent cipher key equipment is received the order of obtaining the LUN value, report that its LUN value is zero, this shows that intelligent cipher key equipment is a single equipment;
Step 106: after main frame is received the LUN value of intelligent cipher key equipment report, send the order of inquiry intelligent cipher key equipment classification to intelligent cipher key equipment;
Step 107: after intelligent cipher key equipment is received the order of query categories, report that to main frame its classification is CDROM;
Step 108: main frame is defaulted as CDROM by operating system with intelligent cipher key equipment after receiving the report of intelligent cipher key equipment;
Step 109: main frame is carried out the AutoRun file that is preset in the intelligent cipher key equipment;
Step 110: judge by the installation procedure that is preset at the required software of operation intelligent cipher key equipment in the intelligent cipher key equipment of AutoRun file appointment whether the required software of operation intelligent cipher key equipment is installed, if do not install, then execution in step 111, if installed then execution in step 112;
Step 111:AutoRun file is by mode required software of installation and operation intelligent cipher key equipment on main frame of background monitoring, and the AutoRun file does not produce the interface in this process;
Step 112: main frame sends order to intelligent cipher key equipment; In order to realize the function of intelligent cipher key equipment, the scsi command by specific scsi command or expansion between main frame and the intelligent cipher key equipment carries out communication;
Step 113: intelligent cipher key equipment is carried out the specific scsi command or the scsi command of expansion;
If the application program in the main frame needs the order of intelligent cipher key equipment response intelligent cipher key equipment function, need send specific scsi command or expansion scsi command to intelligent cipher key equipment; Generally represent that by in the SCSI bag, comprising special territory or position this order is specific scsi command, above-mentioned special territory comprises TargetId or LUN, special position comprises the special position among TargetId, LUN or the Flag, common territory value generally immobilizes, special territory value may change, and different values just shows that this order is special; Wherein Kuo Zhan scsi command is that regulation is given the self-defining order of manufacturer in the SCSI agreement, does not promptly need the order of using when realizing CDROM.
Above-mentioned steps 112 to step 113 can repeat, and generally speaking, with after main frame is connected, intelligent cipher key equipment is in all the time waits for that main frame sends the state of order at intelligent cipher key equipment.
The required software of operation intelligent cipher key equipment comprises one or more in driver, middleware, service and the plug-in unit in the present embodiment, judging in the step 110 when whether required software is installed on the main frame, is to judge according to one or more installation procedures that preset in the intelligent cipher key equipment whether the pairing software of these one or more installation procedures is installed.For example,, judge in the step 110 then whether driver and middleware have been installed on the main frame, if do not install then the execution installation if preset the installation file of driver and middleware in the intelligent cipher key equipment; If preset the installation file of driver, service and plug-in unit in the intelligent cipher key equipment, judge in the step 110 then whether driver, service and plug-in unit have been installed on the main frame, if do not install then the execution installation.
Referring to Fig. 2, the present invention also provides a kind of intelligent cipher key equipment 201, specifically comprises: communication interface module 202, enumerate initialization module 203, AutoRun module 204, scsi command and resolve and execution module 205 and memory module 206.
Communication interface module 202 is used to make intelligent cipher key equipment 201 and main frame 207 to carry out communication.
Memory module 206 is used for installation procedure and AutoRun file at memory block stored operation intelligent cipher key equipment 201 required softwares of dividing out from the storer of intelligent cipher key equipment 201.
Enumerate initialization module 203, be used for intelligent cipher key equipment 201 by communication interface module 202 receive that main frame 207 sends enumerate order the time, be CDROM by communication interface module 202 to the classification of main frame 207 report intelligent cipher key equipments 201.
AutoRun module 204, the AutoRun file that is used for operation intelligent cipher key equipment 201 stored on main frame 207, and specify in the installation procedure of the operation intelligent cipher key equipment 201 required softwares of intelligent cipher key equipment 201 stored by the AutoRun file, judge whether the required software of operation intelligent cipher key equipment 201 has been installed on the main frame 207, if do not install, this software is installed on main frame 207 then.This software comprises a kind of or several combination arbitrarily wherein such as operation intelligent cipher key equipment 201 required driver, middleware, service or plug-in unit etc.The AutoRun file does not produce the interface when this software is installed, but by the mode of background monitoring this software is installed.
Scsi command is resolved and execution module 205, is used for resolving also execution scsi command after intelligent cipher key equipment 201 receives the scsi command that main frame 207 sends; This scsi command comprises the specific scsi command or the scsi command of expansion.
Specific scsi command is the SCSI bag that comprises special territory or position, and special territory comprises TargetId or LUN, and special position comprises the special position among TargetId, LUN or the Flag.
Above-described embodiment, the present invention embodiment a kind of more preferably just, the common variation that those skilled in the art carries out in the technical solution of the present invention scope and replacing all should be included in protection scope of the present invention.